CVE-2018-19281: SQL Injection
Published Nov 14, 2018
·Updated
Centreon 3.4.x (fixed in Centreon 18.10.0 and Centreon web 2.8.27) allows SNMP trap SQL Injection.
Affected Software
3 affected componentsFixes available
composer/centreon/centreon>=2.8<2.8.27
2.8.27
composer/centreon/centreon>=18.0.0<18.10.0
18.10.0
Centreon Centreon=3.4
Event History
Nov 14, 2018
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
May 14, 2022
Advisory Published
12:55 AM
Frequently Asked Questions
1
What is CVE-2018-19281?
CVE-2018-19281 is a vulnerability in Centreon 3.4.x that allows SQL injection through SNMP traps.
2
How severe is CVE-2018-19281?
CVE-2018-19281 has a severity rating of 9.8 (Critical).
3
What is the affected software version of CVE-2018-19281?
Centreon versions from 3.4 to 18.10.0 are affected by CVE-2018-19281.
4
How can I fix CVE-2018-19281?
To fix CVE-2018-19281, update Centreon to version 18.10.0 or Centreon web to version 2.8.27.
5
What is the CWE ID of CVE-2018-19281?
CVE-2018-19281 is associated with CWE-89 (SQL Injection).